Vulnerability Description
libESMTP through 1.0.6 mishandles domain copying into a fixed-size buffer in ntlm_build_type_2 in ntlm/ntlmstruct.c, as demonstrated by a stack-based buffer over-read.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Libesmtp Project | Libesmtp | <= 1.0.6 |
Related Weaknesses (CWE)
References
- https://github.com/Kirin-say/Vulnerabilities/blob/master/Stack_Overflow_in_libesExploitPatchThird Party Advisory
- https://github.com/jbouse-debian/libesmtp/blob/ca5bd0800ef1da234315da4c59716568eExploitThird Party Advisory
- https://web.archive.org/web/20190528215510/http://brianstafford.info/libesmtp/Product
- https://github.com/Kirin-say/Vulnerabilities/blob/master/Stack_Overflow_in_libesExploitPatchThird Party Advisory
- https://github.com/jbouse-debian/libesmtp/blob/ca5bd0800ef1da234315da4c59716568eExploitThird Party Advisory
- https://web.archive.org/web/20190528215510/http://brianstafford.info/libesmtp/Product
FAQ
What is CVE-2019-19977?
CVE-2019-19977 is a vulnerability with a CVSS score of 9.8 (CRITICAL). libESMTP through 1.0.6 mishandles domain copying into a fixed-size buffer in ntlm_build_type_2 in ntlm/ntlmstruct.c, as demonstrated by a stack-based buffer over-read.
How severe is CVE-2019-19977?
CVE-2019-19977 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2019-19977?
Check the references section above for vendor advisories and patch information. Affected products include: Libesmtp Project Libesmtp.